Jump to content

PaddyNewman

Members
  • Posts

    390
  • Joined

  • Last visited

Reputation

739 Excellent

About PaddyNewman

Personal Information

  • Interests
    Gaming / Custom PCs / Motorcycling / Musical Instruments

Employer (optional)

  • Company Represented
    London Grid for Learning (LGfL)

Recent Profile Visitors

2,523 profile views
  1. Interesting. Ive just got ios27 - will give this a whirl. I would presume you block all other DNS regardless?
  2. I do a bit of friends and family support, because my family are very 1 finger typing style. Rustdesk is now hosted on my local microserver and I believe its free commercially. Whether it does everything.... but its free and allows unattended. Im just a remote in and fix it jobby but also let's me get to my machine from my mobile thru starlink, only reason I touched it.
  3. I won't get too involved as it makes me sorta angry, yearly checks feel like a tick box for gov to say 'well we did ask' and schools to absolve themselves. Checks should be done often. The Internet isn't sitting still. People make mistakes, human error causes open holes. My boiler is serviced yearly, my car MOT is yearly, my teeth are checked 6 monthly... Kids safety is more important than all of those, but check their safety net once a year, good job /s Honestly if I was in schools rather than ISP side, machine in every vlan and capable of being on every individual policy, constantly checking known endpoints, alert for any anomalies, weekly audit of filtering changes, termly firewall checks. Costs a little setup but you have the answers whenever you are questioned. With DSLs supposed to be taking control of whats allowed, but maybe tech level not so high, the risk of changes going squiffy is high. I know some schools check often, I know some haven't made a single change in 3 years and just expect it to keep working. Im genuinely scared at some points. I'll now retire to my hole and rest! (Obviously its my personal view, not the company view...)
  4. Forgive me as I haven't touched a Smoothwall in years and even then, it was light. Are you just sending items to the Smoothwall for filtering and giving that as the gateway for clients? VLAN100 should be tagged for it to pass to the Smoothwall if so, but this all sounds odd to me. Your next hop is in the same subnet, so just changing gateway could bypass no? I would probably set it up differently but I really am struggling to draw this out on paper,presumably due to my lack of SW knowledge. How does the sonicwall connect to the smoothwall, 1 physical port with a trunk loaded with vlans? I feel it could be simplified but like I say, struggling to work out the actual topology.
  5. Let me know your school and I will check your settings
  6. Multicast streaming? Different wifi/vlans? No mDNS repeater. Only thing thats ever really scuppered stuff was that when I was doing fun stuff at home with casting.
  7. Our "HomeProtect" offering, its Netsweeper under the hood. Blocks correctly iPad browser only mode and full device filtered iPad mode.
  8. Had to test because that would be concerning if it was that easy... For my local filter, ipad, bitly to tiktok, it redirected and I got blocked. On my raw home feed with our cloud filter on ipad, I get the same, redirects to tiktok.com and blocked. using "bit.ly/4bksbnG" as my test.
  9. To not derail this too much as this is definitely something SBB can handle, but for our homeprotect stuff, happy to hear some ideas/what to do different via DM or support case
  10. Same as above theres a few ways, I have some form of this in a doc somewhere from a recent customer call.
  11. Worth noting Starlink do not subscribe to IWF nor CTIRU/PIPCU. Its as raw as raw can be, ideally you want traffic to go over it via a tunnel to a filtered endpoint, nuke the local wireless etc.
  12. Do you not have a dumb switch and spare public IP? Just pop a switch in middle and out you go with a static IP. Its why I always like an Internet vlan so you can just slap another port into that vlan and get past everything for testing. Plugging a box directly into the router means you cant do testing without dropping the lan (if its that big a problem though, tough cookie, its going down at 4pm. Its literally 1 minute of downtime. Work out how slow it's being and what its costing them in time... Admittedly it's only 1 website, but its handy to have for the future, only possible if you have another public IP to static yourself with though.
  13. Does dev tools suggest its loading anything?
  14. I guess you could test by running testfiltering.com as the school option and check your report, should give you adult/porn, terrorism, profanity and IWF denies at a minimum. Always handy to test to know where you are at base.
×
×
  • Create New...